ANALYSIS |
Customers | Alin Hunter, Snezana Popovic, UW-IT – The customers of the groups described in this design template represent the owners of Legacy HR/P Archive reports. also possibly for email notices about the reports. |
Application Use | BI Portal – The groups will be used for controlling access to the Legacy HR/P Archive reports hosted in the BI Portal (https://biportal.uw.edu). TBD. Email – The groups will be used for emailing notices about the Legacy HR/P Archive reports using UW Mailman or Marketo. |
Membership (Business Definition) | The business definition of the group memberships is individuals with the assignable security roles in Workday. For example, someone with the "Academic_Partner" role will be a member of the related group. See https://isc.uw.edu/admin-corner/security-roles/assignable-roles/ See https://isc.uw.edu/support-resources/how-to-get-workday-help/named-support-contacts/ |
Business Process | Workday security role management |
System of Record | Workday |
Subject Area | Master Data |
Business Domain | Master Data – Services & Resources – HR/P – Access permissions and restrictions
|
DESIGN |
Type | Group (security role) |
Home Group | uw_isc |
Group IDs | Workday Security Role ID | Group ID |
---|
Academic_Partner | academic-partner | Costing_Allocations_Coordinator | costing-allocations-coordinator | HCM_Initiate_2 | hcm_initiate_2 | HR_Partner | hr-partner | VO_STAFF_COMP_COST | vo-staff-comp-cost | Academic_Personnel_Office_Partner | academic-personnel-office-partner | HR_Office_Partner | hr-office-partner | CBU_Benefits_Office_Partner | cbu-benefits-office-partner | Absence_Office_Partner | absence_office_partner | Labor_Relations_Union_Office_Partner | labor-relations-union-office-partner | ISC_Retiree_Office_Partner | isc-retiree-office-partner | TBD | TBD | TBD | TBD | ISC_Payroll_Office_Partner | isc-payroll-office-partner | ISC_Compensation_Office_Partner | isc-compensation-office-partner | VO_Medical_Centers_Payroll_Partner | vo-medical-centers-payroll-partner | VO_Medical_Centers_Absence_for_Leave_Specialist | vo-medical-centers-absence-for-leave-specialist |
|
Display Name | TBD. Need to check if Workday has a user-friendly display name for each Workday security role. |
Lifecycle Policy (Creation) | Groups will be created only for approved uses related to Legacy HR/P Archive reports. |
Lifecycle Policy (Deletion) | Groups will be deleted when custodians request and plan for their deletion. |
Membership (Direct) | Direct membership of each group would include the UW NetIDs of individuals assigned to the specific Workday security role. |
Membership (Exceptions) | No exceptions for additions or deletions. All updates will be mastered in Workday. |
Membership (Grace Period) | None |
Membership (Opt-in) | N/A |
Membership (Opt-out) | N/A |
Contact Person | TBD. A contact appropriate for Workday security role support, e.g. "ischelp". |
Description | TBD. Define descriptions that help potential customers understand fit for purpose and use, including lifecycle policy, membership policy, data quality standards, appropriate use guidelines, access control policy, ownership, and contact information. Some business processes master data that can be used for descriptions. |
More Information | N/A |
Application Settings (Exchange) | Inactive; change to settings will require custodian approval. |
Application Settings (Google) | Inactive; change to settings will require custodian approval. |
ACCESS CONTROL |
Data Custodian | Nancy Jagger, Rachel Gatlin, Margaret Stuart, Cindy Gregovich |
Classification | TBD. Determine the appropriate UW data classification (Public, Restricted, Confidential). |
Access Control Policy | TBD. Decide and document the access control policy including membership viewer control, sender control, appropriate use guidelines, terms and conditions of use, etc. |
Membership Viewer Control | TBD. Define the membership viewer control, including exceptions to the access control policy. |
Sender Control | N/A |
IMPLEMENTATION |
Data Source | HRPWS |
Membership (Technical) | TBD. Define the technical definition of the memberships in terms used by the data source and its data elements, as well as any additional filtering. |
Provisioning | TBD. Define a provisioning model for data integration and reconciliation that ensures the groups are created in accordance with their lifecycle policy and managed in accordance with their data quality standards. |
De-Provisioning | TBD. Define a de-provisioning model that ensures the groups are deleted in accordance with their lifecycle policy. |
Monitoring | TBD. Define a monitoring solution that helps identify incidents and problems, particularly those that impact availability and reliability. |
Data Quality Standards | TBD. Define data quality standards under normal operations, including data validation rules, timeliness of updates, defined error rates, integrity monitoring, and reliability. The standards will depend on the business process, system of record, data source, provisioning and de-provisioning models, monitoring, and operations. |
Internal Documentation | TBD. Define what internal documentation will be developed and where it will be maintained. |
Customer Documentation | TBD. |
Communication Plan | TBD. Alin and Snezana will coordinate communications with BI Portal report users and other stakeholders. |
OPERATIONS |
Request Fulfillment | TBD. Define how requests will be fulfilled. For example, standard requests for information, access to memberships, membership exceptions, email settings, design changes, etc. |
Incident Management | TBD. Define how incidents will be handled. |